Tagged “exploit-available”
CVEs tagged exploit-available, newest first.
3860 CVEsRSS
CVE-2011-4043Critical· 9.3PoCInteger overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to…
Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to…
CVE-2011-4042Critical· 9.3PoCAn unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafted HTML document to obtain control of a function pointer.
An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafted HTML document to obtain control of a function pointer.
CVE-2010-2861Critical· 9.8CISA KEVPoCMultiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2)…
Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1) CFIDE/administrator/settings/mappings.cfm, (2)…
CVE-2010-1428High· 7.5CISA KEVPoCThe Web Console (aka web-console) in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allow…
The Web Console (aka web-console) in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allow…
CVE-2010-0738Medium· 5.3CISA KEVPoCThe JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allows …
The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allows …
CVE-2010-0188High· 7.8CISA KEVPoCUnspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.
Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.
CVE-2009-3960Medium· 6.5CISA KEVPoCUnspecified vulnerability in BlazeDS 3.2 and earlier, as used in LiveCycle 8.0.1, 8.2.1, and 9.0, LiveCycle Data Services 2.5.1, 2.6.1, and 3.0, Flex Data Services 2.0.1, and ColdFusion 7.0.2, 8.0, 8.0.1, and 9.0, allows remote attackers…
Unspecified vulnerability in BlazeDS 3.2 and earlier, as used in LiveCycle 8.0.1, 8.2.1, and 9.0, LiveCycle Data Services 2.5.1, 2.6.1, and 3.0, Flex Data Services 2.0.1, and ColdFusion 7.0.2, 8.0, 8.0.1, and 9.0, allows remote attackers…
CVE-2010-0605High· 7.5PoCSQL injection vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users, with "Staff" permissions, to execute arbitrary SQL commands via the input parameter.
SQL injection vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users, with "Staff" permissions, to execute arbitrary SQL commands via the input parameter.
CVE-1999-0236High· 7.5PoCScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
CVE-1999-0204Critical· 10.0PoCSendmail 8.6.9 allows remote attackers to execute root commands, using ident.
Sendmail 8.6.9 allows remote attackers to execute root commands, using ident.
CVE-1999-0178High· 7.5PoCBuffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.
CVE-1999-0173Medium· 5.0PoCFormMail CGI program can be used by web servers other than the host server that the program resides on.
FormMail CGI program can be used by web servers other than the host server that the program resides on.
CVE-1999-0170High· 7.5PoCRemote attackers can mount an NFS file system in Ultrix or OSF, even if it is denied on the access list.
Remote attackers can mount an NFS file system in Ultrix or OSF, even if it is denied on the access list.
CVE-1999-1026High· 7.2PoCaspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file.
aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file.
CVE-1999-0128Medium· 5.0PoCOversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
CVE-1999-0101Critical· 10.0PoCBuffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
CVE-1999-0045High· 7.5PoCList of arbitrary files on Web host via nph-test-cgi script.
List of arbitrary files on Web host via nph-test-cgi script.
CVE-1999-0044High· 7.2PoCfsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
CVE-1999-0050High· 7.2PoCBuffer overflow in HP-UX newgrp program.
Buffer overflow in HP-UX newgrp program.
CVE-1999-0130High· 7.2PoCLocal users can start Sendmail in daemon mode and gain root privileges.
Local users can start Sendmail in daemon mode and gain root privileges.
CVE-1999-1384High· 7.2PoCIndigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the Remove…
Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the Remove…
CVE-1999-0032High· 7.2PoCBuffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option.
Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option.
CVE-1999-0116Medium· 5.0PoCDenial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.
Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.
CVE-1999-1413Medium· 4.6PoCSolaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g
Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g. …
CVE-1999-0023High· 7.2PoCLocal user gains root privileges via buffer overflow in rdist, via lookup() function.
Local user gains root privileges via buffer overflow in rdist, via lookup() function.
CVE-1999-0137High· 7.2PoCThe dip program on many Linux systems allows local users to gain root access via a buffer overflow.
The dip program on many Linux systems allows local users to gain root access via a buffer overflow.
CVE-1999-0175Medium· 5.0PoCThe convert.bas program in the Novell web server allows a remote attackers to read any file on the system that is internally accessible by the web server.
The convert.bas program in the Novell web server allows a remote attackers to read any file on the system that is internally accessible by the web server.
CVE-1999-0070Medium· 5.0PoCtest-cgi program allows an attacker to list files on the server.
test-cgi program allows an attacker to list files on the server.
CVE-1999-0233Critical· 10.0PoCIIS 1.0 allows users to execute arbitrary commands using .bat or .cmd files.
IIS 1.0 allows users to execute arbitrary commands using .bat or .cmd files.
CVE-1999-0103Medium· 5.0PoCEcho and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a
Echo and chargen, or other combinations of UDP services, can be used in tandem to flood the server, a.k.a. UDP bomb or UDP packet storm.